cbcvebase.

Apple Macos Sonoma vulnerabilities

960 known vulnerabilities affecting apple/macos_sonoma.

Total CVEs
960
CISA KEV
11
actively exploited
Public exploits
8
Exploited in wild
19
Severity breakdown
CRITICAL73HIGH290MEDIUM533LOW63UNKNOWN1

Vulnerabilities

Page 44 of 48
CVE-2025-43355P4MEDIUMCVSS 5.5v14.82025-09-15
CVE-2025-43355 [MEDIUM] CVE-2025-43355: macOS Sonoma 14.8 Apple Security Update: About the security content of macOS Sonoma 14.8 Product: macOS Sonoma Version: 14.8 CVE: CVE-2025-43355 Component: MobileStorageMounter Impact: An app may be able to cause a denial-of-service Description: A type confusion issue was addressed with improved memory handling.
apple
CVE-2024-23239P4MEDIUMCVSS 4.7v14.42024-03-07
CVE-2024-23239 [MEDIUM] CVE-2024-23239: macOS Sonoma 14.4 Apple Security Update: About the security content of macOS Sonoma 14.4 Product: macOS Sonoma Version: 14.4 CVE: CVE-2024-23239 Component: Sandbox Impact: An app may be able to leak sensitive user information Description: A race condition was addressed with improved state handling.
apple
CVE-2023-27952P4MEDIUMCVSS 4.7v14.62024-07-29
CVE-2023-27952 [MEDIUM] CVE-2023-27952: macOS Sonoma 14.6 Apple Security Update: About the security content of macOS Sonoma 14.6 Product: macOS Sonoma Version: 14.6 CVE: CVE-2023-27952 Component: Safari Impact: An app may bypass Gatekeeper checks Description: A race condition was addressed with improved locking.
apple
CVE-2023-41997P4MEDIUMCVSS 4.6v14.12023-10-25
CVE-2023-41997 [MEDIUM] CVE-2023-41997: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-41997 Component: Siri Impact: An attacker with physical access may be able to use Siri to access sensitive user data Description: This issue was addressed by restricting options offered on a locked device.
apple
CVE-2023-41982P4MEDIUMCVSS 4.6v14.12023-10-25
CVE-2023-41982 [MEDIUM] CVE-2023-41982: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-41982 Component: Siri Impact: An attacker with physical access may be able to use Siri to access sensitive user data Description: This issue was addressed by restricting options offered on a locked device.
apple
CVE-2024-23275P4MEDIUMCVSS 4.7v14.42024-03-07
CVE-2024-23275 [MEDIUM] CVE-2024-23275: macOS Sonoma 14.4 Apple Security Update: About the security content of macOS Sonoma 14.4 Product: macOS Sonoma Version: 14.4 CVE: CVE-2024-23275 Component: PackageKit Impact: An app may be able to access protected user data Description: A race condition was addressed with additional validation.
apple
CVE-2024-40818P4MEDIUMCVSS 4.6v14.62024-07-29
CVE-2024-40818 [MEDIUM] CVE-2024-40818: macOS Sonoma 14.6 Apple Security Update: About the security content of macOS Sonoma 14.6 Product: macOS Sonoma Version: 14.6 CVE: CVE-2024-40818 Component: Siri Impact: An attacker with physical access may be able to use Siri to access sensitive user data Description: This issue was addressed by restricting options offered on a locked device.
apple
CVE-2024-23251P4MEDIUMCVSS 4.6v14.52024-05-13
CVE-2024-23251 [MEDIUM] CVE-2024-23251: macOS Sonoma 14.5 Apple Security Update: About the security content of macOS Sonoma 14.5 Product: macOS Sonoma Version: 14.5 CVE: CVE-2024-23251 Component: Mail Impact: An attacker with physical access may be able to leak Mail account credentials Description: An authentication issue was addressed with improved state management.
apple
CVE-2023-42843P4MEDIUMCVSS 4.3v14.12023-10-25
CVE-2023-42843 [MEDIUM] CVE-2023-42843: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-42843 Component: WebKit Impact: Visiting a malicious website may lead to address bar spoofing Description: An inconsistent user interface issue was addressed with improved state management.
apple
CVE-2024-23273P4MEDIUMCVSS 4.3v14.42024-03-07
CVE-2024-23273 [MEDIUM] CVE-2024-23273: macOS Sonoma 14.4 Apple Security Update: About the security content of macOS Sonoma 14.4 Product: macOS Sonoma Version: 14.4 CVE: CVE-2024-23273 Component: Safari Private Browsing Impact: Private Browsing tabs may be accessed without authentication Description: This issue was addressed through improved state management.
apple
CVE-2023-35984P4MEDIUMCVSS 4.3v142023-09-26
CVE-2023-35984 [MEDIUM] CVE-2023-35984: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-35984 Component: Bluetooth Impact: An attacker in physical proximity can cause a limited out of bounds write Description: The issue was addressed with improved checks.
apple
CVE-2025-24279P4MEDIUMCVSS 4.3v14.7.52025-03-31
CVE-2025-24279 [MEDIUM] CVE-2025-24279: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24279 Component: Voice Control Impact: An app may be able to access contacts Description: This issue was addressed with improved file handling.
apple
CVE-2024-44260P4MEDIUMCVSS 4.4v14.7.12024-10-28
CVE-2024-44260 [MEDIUM] CVE-2024-44260: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44260 Component: Assets Impact: A malicious app with root privileges may be able to modify the contents of system files Description: This issue was addressed by removing the vulnerable code.
apple
CVE-2025-43336P4MEDIUMCVSS 4.4v14.8.22025-11-03
CVE-2025-43336 [MEDIUM] CVE-2025-43336: macOS Sonoma 14.8.2 Apple Security Update: About the security content of macOS Sonoma 14.8.2 Product: macOS Sonoma Version: 14.8.2 CVE: CVE-2025-43336 Component: SoftwareUpdate Impact: An app with root privileges may be able to access private information Description: A permissions issue was addressed with additional restrictions.
apple
CVE-2023-42952P4MEDIUMCVSS 4.4v14.12023-10-25
CVE-2023-42952 [MEDIUM] CVE-2023-42952: macOS Sonoma 14.1 Apple Security Update: About the security content of macOS Sonoma 14.1 Product: macOS Sonoma Version: 14.1 CVE: CVE-2023-42952 Component: Automation Impact: An app with root privileges may be able to access private information Description: The issue was addressed with improved checks.
apple
CVE-2025-24199P4MEDIUMCVSS 5.5v14.7.52025-03-31
CVE-2025-24199 [MEDIUM] CVE-2025-24199: macOS Sonoma 14.7.5 Apple Security Update: About the security content of macOS Sonoma 14.7.5 Product: macOS Sonoma Version: 14.7.5 CVE: CVE-2025-24199 Component: Foundation Impact: An app may be able to cause a denial-of-service Description: An uncontrolled format string issue was addressed with improved input validation.
apple
CVE-2024-27853P4HIGHCVSS 7.8v14.42024-03-07
CVE-2024-27853 [HIGH] CVE-2024-27853: macOS Sonoma 14.4 Apple Security Update: About the security content of macOS Sonoma 14.4 Product: macOS Sonoma Version: 14.4 CVE: CVE-2024-27853 Component: CVE-2024-23225 Impact: A maliciously crafted ZIP archive may bypass Gatekeeper checks Description: This issue was addressed with improved checks.
apple
CVE-2023-41979P4MEDIUMCVSS 4.7v142023-09-26
CVE-2023-41979 [MEDIUM] CVE-2023-41979: macOS Sonoma 14 Apple Security Update: About the security content of macOS Sonoma 14 Product: macOS Sonoma Version: 14 CVE: CVE-2023-41979 Component: XProtectFramework Impact: An app may be able to modify protected parts of the file system Description: A race condition was addressed with improved locking.
apple
CVE-2024-23293P4MEDIUMCVSS 4.6v14.42024-03-07
CVE-2024-23293 [MEDIUM] CVE-2024-23293: macOS Sonoma 14.4 Apple Security Update: About the security content of macOS Sonoma 14.4 Product: macOS Sonoma Version: 14.4 CVE: CVE-2024-23293 Component: Siri Impact: An attacker with physical access may be able to use Siri to access sensitive user data Description: This issue was addressed through improved state management.
apple
CVE-2024-44137P4MEDIUMCVSS 4.6v14.7.12024-10-28
CVE-2024-44137 [MEDIUM] CVE-2024-44137: macOS Sonoma 14.7.1 Apple Security Update: About the security content of macOS Sonoma 14.7.1 Product: macOS Sonoma Version: 14.7.1 CVE: CVE-2024-44137 Component: Screen Capture Impact: An attacker with physical access may be able to share items from the lock screen Description: The issue was addressed with improved checks.
apple
Apple Macos Sonoma vulnerabilities | cvebase